<html><head><meta http-equiv="Content-Type" content="text/html; charset=us-ascii"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; line-break: after-white-space;" class="">hi all,<div class=""><br class=""></div><div class="">as much as i appreciate every discussion, i would kindly ask everybody to refrain from posting links pointing at actual downloads</div><div class="">my 0.02$</div><div class=""><br class=""></div><div class="">x</div><div class=""><div><br class=""><blockquote type="cite" class=""><div class="">On 30 Oct 2021, at 2:49 PM, Al Varnell via macports-users <<a href="mailto:macports-users@lists.macports.org" class="">macports-users@lists.macports.org</a>> wrote:</div><br class="Apple-interchange-newline"><div class=""><meta http-equiv="Content-Type" content="text/html; charset=us-ascii" class=""><div style="word-wrap: break-word; -webkit-nbsp-mode: space; line-break: after-white-space;" class=""><meta http-equiv="Content-Type" content="text/html; charset=us-ascii" class=""><div style="word-wrap: break-word; -webkit-nbsp-mode: space; line-break: after-white-space;" class="">I see that I already have the latest ISRG Root X1 certificate in the System Roots keychain, so not sure why I would need to add it to my System keychain.<div class=""><br class=""></div><div class="">And when I went to <a href="https://letsencrypt.org/certs/isrgrootx1.pem" class="">https://letsencrypt.org/certs/isrgrootx1.pem</a> to download, it showed up as a .cer instead of a .pem.<br class=""><div class=""><br class=""></div><div class="">-Al-<br class=""><div class=""><br class=""><blockquote type="cite" class=""><div class="">On Oct 29, 2021, at 10:25 PM, Michael <<a href="mailto:keybounce@gmail.com" class="">keybounce@gmail.com</a>> wrote:</div><br class="Apple-interchange-newline"><div class=""><div class="">So I found this advice online for updating certs without having to worry about trusting expired old certs.<br class=""><br class="">1. Visit <a href="https://letsencrypt.org/certs/isrgrootx1.pem" class="">https://letsencrypt.org/certs/isrgrootx1.pem</a> to download the certificate, and save it in the Documents folder.<br class=""><br class="">2. Open Terminal, paste this command, and press enter:<br class=""><br class="">sudo security -v add-trusted-cert -d -r trustRoot -k "/Library/Keychains/System.keychain" ~/Documents/isrgrootx1.pem<br class=""><br class="">This eliminates the need for marking the expired DST root as special-case trusted.</div></div></blockquote></div><br class=""></div></div></div><div id="MailbutlerWatermark" class="watermark"><div class=""><div id="v5" style="position: relative;" class="">
    <div style="display: flex; padding: 4px;" class="">
        <div style="margin: auto 4px;" class="">
            <img src="https://images.mailbutler.io/w/watermark_mailbutler.png" style="width: 36px;" class="lp-rich-link">
        </div>
        <span style="height: 27px; font-family: Poppins, sans-serif; font-style: normal; 
                     font-weight: 500; font-size: 14px; line-height: 27px; color: #414245; margin: 5px; margin-left: 10px;" class="">Powered by <b class=""><a href="https://www.mailbutler.io/?utm_source=watermark&utm_medium=email&utm_campaign=watermark-variant-primary" class="">Mailbutler</a></b>, the email extension that does it all</span>
    </div>
</div></div></div></div></div></blockquote></div><br class=""></div></body></html>